A new variant of MyDoom worm was found on January 15th, 2005.
Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.
This variant sends variable emails with EXE/SCR/PIF/ZIP attachments. Some mails contain sexually explicit images and claim that the attachment contains passwords for adult websites.
The body text of infected e-mails varies...for example:
- The message contains Unicode characters and has been sent as a binary attachment.
- Mail transaction failed. Partial message is available.
- The message cannot be represented in 7-bit ASCII encoding and has been sent as a binary attachment